In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix hugetlb_lock AA deadlock in
In the Linux kernel, the following vulnerability has been resolved: net: phy: don't try to setup PHY-driven SFP cages w
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix AMDGPU_INFO_READ_MMR_REG There wer
In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Resolve soft lockup issue when opening /d
In the Linux kernel, the following vulnerability has been resolved: net: dsa: remove redundant netdev_lock_ops() from c
In the Linux kernel, the following vulnerability has been resolved: debugobjects: Don't call fill_pool() in early boot
In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix shrinker deadlock With PROVE_LOCKING
In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: fix pm_runtime leak on mutex_lock failu
In the Linux kernel, the following vulnerability has been resolved: gpio: shared: fix deadlock on shared proxy's parent
[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi
The USB CDC-NCM device class (subsys/usb/device_next/class/usbd_cdc_ncm.c) ignores the return value of usbd_ep_enqueue()
Spring MVC and WebFlux applications are vulnerable to stream corruption when using Server-Sent Events (SSE). This issue
Improper Locking vulnerability (CWE-667) in Gallagher Morpho integration allows a privileged operator to cause a limited
OpenTelemetry-Go is the Go implementation of OpenTelemetry. From version 0.11.0 through 1.44.0, the OpenTracing bridge's
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix racy issue from session lookup and expir
In the Linux kernel, the following vulnerability has been resolved: Revert "smb: client: fix TCP timers deadlock after
In the Linux kernel, the following vulnerability has been resolved: Revert "arm64: dts: qcom: sdm845: Affirm IDR0.CCTW
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Add missing lock in cfg80211_check_
In the Linux kernel, the following vulnerability has been resolved: tcp: correct handling of extreme memory squeeze Te
In the Linux kernel, the following vulnerability has been resolved: mptcp: make fallback action and fallback decision a
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add a lock when accessing the buddy tri
In the Linux kernel, the following vulnerability has been resolved: IB/rdmavt: add lock to call to rvt_error_qp to prev
In the Linux kernel, the following vulnerability has been resolved: ocfs2: dlmfs: fix error handling of user_dlm_destro
In the Linux kernel, the following vulnerability has been resolved: loop: implement ->free_disk Ensure that the lo_dev
In the Linux kernel, the following vulnerability has been resolved: bpf: bpf_local_storage: Always use bpf_mem_alloc in
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Add locks for usb_drive
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix softlockup in arena_map_free on 64k page k
In the Linux kernel, the following vulnerability has been resolved: jfs: Prevent copying of nlink with value 0 from dis
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix region locking in hash types
In the Linux kernel, the following vulnerability has been resolved: __legitimize_mnt(): check for MNT_SYNC_UMOUNT shoul
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix locking in rxrpc's sendmsg Fix three bu
In the Linux kernel, the following vulnerability has been resolved: af_packet: move notifier's packet_dev_mc out of rcu
In the Linux kernel, the following vulnerability has been resolved: fs/dax: Fix "don't skip locked entries when scannin
In the Linux kernel, the following vulnerability has been resolved: dm: dm-crypt: Do not partially accept write BIOs wi
In the Linux kernel, the following vulnerability has been resolved: USB: Gadget: core: Help prevent panic during UVC un
In the Linux kernel, the following vulnerability has been resolved: parisc: Fix locking in pdc_iodc_print() firmware ca
A memory corruption issue was addressed with improved lock state checking. This issue is fixed in iOS 18.7.2 and iPadOS
In the Linux kernel, the following vulnerability has been resolved: rxrpc, afs: Fix peer hash locking vs RCU callback
In the Linux kernel, the following vulnerability has been resolved: NFSv4: Fix a deadlock when recovering state on a si
In the Linux kernel, the following vulnerability has been resolved: 9p: trans_fd/p9_conn_cancel: drop client lock earli
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix WARNING "do not call blocking ops when !
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when reconnecti
Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate pri
In processLaunchBrowser of CommandParamsFactory.java, there is a possible browser interaction from the lockscreen due to
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attack
Under undisclosed traffic conditions along with conditions beyond the attacker's control, hardware systems with a High-S
Improper locking in the Intel(R) Integrated Connectivity I/O interface (CNVi) for some Intel(R) Core™ Ultra Processors m
In the Linux kernel, the following vulnerability has been resolved: i3c: Use i3cdev->desc->info instead of calling i3c_
In the Linux kernel, the following vulnerability has been resolved: pinmux: Use sequential access to access desc->pinmu
In the Linux kernel, the following vulnerability has been resolved: dma-debug: fix a possible deadlock on radix_lock r
Frequently Asked Questions
What is CWE-667?
CWE-667 (CWE-667) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-667?
There are 851 CVE records associated with CWE-667 in our database. Of these, 7 are critical severity, 173 are high severity, and 509 are medium severity.
How can I protect against CWE-667 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-667 using AI-powered security agents.
Detect CWE-667 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-667 vulnerabilities across your infrastructure.
Get Started